Beveiligingsadvies

CVE-2023-26570

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-10-25 08:38:38
Laatst bijgewerkt 2024-10-15 18:32:48
Toegewezen door TML
CVSS-score 7.5
Status PUBLISHED

Beschrijving

Missing authentication in the StudentPopupDetails_Timetable method in IDAttend’s IDWeb application 3.1.052 and earlier allows extraction sensitive student data by unauthenticated attackers.